Skip to content

Instantly share code, notes, and snippets.

@hortonew
Created September 26, 2018 01:56
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save hortonew/ff778ff0dd10ef4df808373c3c3c41a0 to your computer and use it in GitHub Desktop.
Save hortonew/ff778ff0dd10ef4df808373c3c3c41a0 to your computer and use it in GitHub Desktop.
Example krb5.conf to authenticate via kerberos from unix to windows
[libdefaults]
default_realm = CORPORATE.COMPANY.COM
krb4_config = /etc/krb.conf
krb4_realms = /etc/krb.realms
kdc_timesync = 1
ccache_type = 4
forwardable = true
proxiable = true
v4_instance_resolve = false
v4_name_convert = {
host = {
rcmd = host
ftp = ftp
}
plain = {
something = something-else
}
}
fcc-mit-ticketflags = true
[realms]
CORPORATE.COMPANY.COM = {
kdc = my-dc-corporate.corporate.company.com
default_domain = coporate.company.com
kpasswd_server = my-dc-corporate.corporate.company.com
}
UTILITY.COMPANYHOSTING.NET = {
kdc = my-dc-utility.utility.companyhosting.net
default_domain = utility.companyhosting.net
kpasswd_server = my-dc-utility.utility.companyhosting.net
}
DEVELOPMENT.COMPANY.COM = {
kdc = my-dc-development.development.company.com
default_domain = development.company.com
kpasswd_server = my-dc-development.development.company.com
}
[domain_realm]
.corporate.company.com = CORPORATE.COMPANY.COM
.utility.companyhosting.net = UTILITY.COMPANYHOSTING.NET
.development.company.com = DEVELOPMENT.COMPANY.COM
[login]
krb4_convert = true
krb4_get_tickets = false
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment